How to configure VOIP vlan with tunnel node ports in Mobility Access Switch

This Article will help in configuring the VOIP vlan with tunnel node setup with MAS and controller.

When the switch port is a tunneled-port, all traffic from IP phone and user traffic gets tunneled to the controller. So, LLDP-MED and voip-profile will not be active on that port.

The traffic from both IP phone and user will be untagged. The roles assigned to the IP phone and data-user on the controller define the vlan which will be assigned to them.

Apply a switching-profile on the tunneled-node port so that the port has untagged membership for data vlan. On the wired aaa profile, apply a user-derivation-rule so that phone traffic (matching the OUI)gets Voice vlan.

For instance, Let us have data vlan as 65 and VoIP vlan as 250. We want the data users to be authenticated via Captive portal and phone traffic to be in vlan 250 :